368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$108k – $195k per year
Location
Remote (United States)
Seniority
Staff · 8+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Leidos is a defense, intelligence, civil, and health information technology enterprise. Headquartered in Reston, Virginia, the Fortune 500 company (NYSE: LDOS) operates as one of the primary IT, scientific research, and systems integration contractors for the U.S. federal government, allied defense agencies, and commercial infrastructure entities.

Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manage and enhance the security and compliance posture of the M365 environment within a GCC (Government Community Cloud) tenant, particularly in a federal agency context. This senior engineering role sits at the center of the organization’s device, identity, and M365 security ecosystem. The engineer is responsible for protecting enterprise Windows, macOS, iOS/iPadOS endpoints; ensuring compliant, reliable access to M365 services, and driving rapid engineering responses to vulnerabilities, outages, and operational risks. The successful candidate will apply with deep technical expertise, cross-platform engineering capability, and high operational security judgment.

Role Summary: Responsible for securing and maintaining compliance of the Microsoft 365 (M365) ecosystem and enterprise endpoints. Leads security governance, implements and enforces controls across M365, email, identity, devices, and telemetry, and provides incident response and audit/ATO support to ensure alignment with federal and organizational security requirements.

Must meet the following qualifications:

Bachelors Degree and 8+ years of experience. 4 additional years of experience may be substituted in lieu of degree.

Candidate MUST:

be a US Citizen or US Person with the ability to obtain a Public Trust level 5 clearance.

Required Qualifications

Technical Skills

  • Deep experience with Microsoft Defender (XDR, Endpoint, Cloud Apps).

  • Hands-on with Sentinel SIEM, and cross-platform telemetry pipelines.

  • Expert-level Intune engineering across Windows/macOS/iOS/iPadOS.

  • Advanced PowerShell for remediation, automation, and OS image manipulation.

  • Strong understanding of CAP architecture and identity risk enforcement.

  • Experience with ATO control evidence, compliance mapping, and audit support.

Soft Skills

  • Growth mindset and willingness to learn emerging security domains.

  • Strong cross-team collaboration (Cyber, Ops, EA, ICAM, Comms).

  • Excellent communication-clear summaries, user-impact translation, and documentation.

  • High reliability, ownership, and situational awareness during high-severity events.

Preferred Qualifications

  • Prior experience in federal security, high-compliance, or high-assurance environments.

  • Experience with Jamf, Okta connectors, Copilot audit logging, Graph API operations.

  • Experience with mSCP baseline engineering and macOS security hardening.

  • Prior involvement in enterprise-wide Conditional Access enforcement.

Primary Responsibilities

Strategic security oversight & governance

  • Lead the development, implementation, and ongoing management of M365 security policies, standards, and technical guardrails aligned to federal requirements and organizational controls.

  • Own governance for data protection capabilities including document classification, labeling, retention, and Data Loss Prevention (DLP) using Microsoft Purview.

Email security & compliance management (Exchange Online)

  • Define and enforce email security policies such as encryption, sensitivity labeling, and secure mail flow to reduce unauthorized disclosure.

  • Implement and maintain email encryption solutions (S/MIME and/or Microsoft Information Protection) to protect confidentiality of email communications.

  • Administer and monitor anti-spam, anti-phishing, and anti-malware protections to defend against evolving threats.

Identity, access, and conditional access (Entra ID)

  • Engineer and validate device-compliance-based Conditional Access policies across Windows, macOS, and mobile platforms.

  • Investigate and remediate Conditional Access failures, identity anomalies, and external/guest access issues, including M365 B2B trust and secure partner collaboration requirements.

Endpoint & device security engineering (Intune)

  • Design, test, and deploy Intune configuration and compliance policies for Windows, macOS, and iOS/iPadOS, including Enrollment Status Pages (ESPs) and OOBE workflows.

  • Develop remediation scripts (PowerShell/platform scripts/configuration profiles) to close compliance gaps and enforce security baselines.

  • Coordinate enterprise rollout of urgent vulnerability mitigations and validated vendor fixes; support vulnerability reviews and baseline rebuilds.

Risk management & compliance assurance (ATO / controls)

  • Establish and operate a risk management approach to identify, assess, and mitigate security risks across the M365 ecosystem.

  • Support ATO/control assessment activities by drafting implementation statements, collecting artifacts, and providing evidence aligned to audit/logging requirements.

Security monitoring, SIEM, and telemetry engineering (Defender / Sentinel)

  • Lead integration and operational management of Microsoft Defender and Microsoft Sentinel for threat detection, alerting, and response across M365.

  • Build and maintain SIEM integrations/connectors (e.g., M365, collaboration and identity systems) and develop ingestion pipelines (e.g., Azure Function Apps) for third-party logs.

  • Tune audit retention, analytic rules, and alert logic to improve signal quality and investigation readiness.

Incident response & operational support / collaboration

  • Provide Tier 3 troubleshooting for device compliance failures, identity/access incidents, telemetry gaps, and OS/app protection issues.

  • Partner with cross-functional teams to align security solutions with business objectives, deliver technical leadership, and support enterprise syncs and operational reviews.

Continuous improvement & innovation

  • Stay current on M365 security/compliance updates, industry trends, and emerging capabilities; drive improvements to security posture and operational efficiency (including use of GCC Copilot where appropriate).

Platform Scope / Tooling Microsoft 365 (GCC), Microsoft Purview (DLP/labels/classification/retention), Exchange Online, Entra ID & Conditional Access, Microsoft Intune, Microsoft Defender, Microsoft Sentinel, Azure (Function Apps / Log Analytics), plus integrations with collaboration/IT systems (e.g., ticketing and SaaS log sources).

“Day in the Life"

Morning

  • Review Sentinel incidents, Defender telemetry gaps, and compliance drift.

  • Respond to overnight CAP failures, Slack EMM issues, or OS update regressions.

  • Join device/enterprise standups.

Midday

  • Build/test remediation scripts (CVE fixes, NTLM disablement, compliance corrections).

  • Deploy or test Intune configuration profiles, ESP changes, or app protection updates.

  • Troubleshoot support cases with Microsoft (Purview DSPM, Copilot logs, Okta connector).

Afternoon

  • Conduct cross-team investigations (external-user access anomalies, Teams meeting forensics).

  • Validate CAP behaviors across platforms using test devices.

  • Work on ATO evidence packages and documentation.

End of Day

  • Update Jira tasks, Confluence documentation, and CR submissions.

  • Send status updates on active investigations, mitigations, and test results.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:

August 26, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
United States
$96k – $227k per year (Estimated) • In office • Full-Time • Melbourne • Sydney
PowerShell
Python
DevOps
AWS
Azure
CI/CD
GCP
Incident Management
Kubernetes
Platform Engineering
Service Mesh
Terraform
Apply
$16k – $38k per year (Estimated) • Remote • Full-Time • 3+ years exp • Bachelor's Degree • Saint Petersburg
PowerShell
DevOps
Azure
GCP
Hyper-V
VMWare
Windows Server
Management
Google Workspace
Apply
$40k – $86k per year (Estimated) • Remote/Hybrid • Full-Time • Élancourt
Bash
PowerShell
Python
SQL
Databases
MySQL
PostgreSQL
Redis
DevOps
Amazon CloudWatch
Ansible
AWS
Azure
CentOS Stream
CI/CD
Debian
Docker
GCP
GitLab
GitLab CI
Grafana
Hyper-V
IAM
Jenkins
Kubernetes
Nagios
Prometheus
Proxmox VE
Terraform
Ubuntu
VMWare
Windows Server
Zabbix
Apply
$142k – $215k per year • In office • Full-Time • 12+ years exp • Princeton
JavaScript
TypeScript
Java
Java
Gradle
Hibernate
Maven
Spring Boot
Databases
Databricks
Snowflake
AI/ML
AI Agents
Claude
Claude Code
Frontend
Angular
React.js
Vue.js
DevOps
Amazon CloudWatch
Amazon ECS
Amazon EKS
Amazon EventBridge
Amazon S3
API Gateway
AWS
AWS Lambda
AWS Step Functions
Azure
CI/CD
IAM
Platform Engineering
Rest API
Kubernetes
Apply
$71k – $149k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Jacksonville • King of Prussia
Go
Python
Java
Java
Flyway
Liquibase
DevOps
Amazon EKS
ArgoCD
CI/CD
Git
GitHub Actions
GitLab CI
Helm
Jenkins
JFrog Artifactory
Kubernetes
Platform Engineering
SRE
Terraform
AWS
GitHub
GitLab
Cybersecurity
SonarQube
Apply
$70k – $126k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Shiloh
DevOps
AWS
Azure
GCP
Cybersecurity
Cyber Kill Chain
Defense in Depth
MITRE ATT&CK
Apply
$131k – $237k per year • Remote • Full-Time • 12+ years exp • Bachelor's Degree • United States
C++
Java
Python
Kotlin
Kotlin
Mockito
Databases
Apache Kafka
AI/ML
ChatGPT
Claude
Claude Code
Copilot
RAG
AI Agents
Context Engineering
LLM Guardrails
Model Context Protocol
DevOps
Ansible
Argo Workflows
ArgoCD
AWS
CI/CD
CloudFormation
Configuration Management
Docker
Git
GitOps
Helm
Istio
Kubernetes
OpenShift
Podman
Service Mesh
Terraform
GitHub
GitLab
Cybersecurity
SonarQube
QA
Selenium
Apply
$73k – $133k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Orlando
Bash
PowerShell
Python
DevOps
Ansible
Configuration Management
Docker
Git
Kubernetes
Kustomize
OpenShift
Puppet
Red Hat
Terraform
VMWare
Management
Confluence
Jira
Apply
$108k – $195k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • Chantilly
DevOps
Ansible
CI/CD
Docker
Kubernetes
Apply
$108k – $195k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Bethesda
Bash
Python
C
C
MPI
AI/ML
Kubeflow
DevOps
Ansible
AWS
CI/CD
Docker
GitLab CI
Kubernetes
Platform Engineering
SLURM
Terraform
Ubuntu
GitLab
Apply
$78k – $130k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Cary • San Jose
Analytics
Power BI
Apply
$91k – $182k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • United States
Design
SolidWorks
Apply
$45k – $60k per year • Remote • Full-Time • 2+ years exp • PhD • United States
Cybersecurity
HIPAA
Apply
$117k – $258k per year (Estimated) • Equity • Remote • Full-Time • United States
C++
Java
Python
Cybersecurity
Crowdstrike
Apply
$90k – $184k per year (Estimated) • Equity • Remote • Full-Time • 3+ years exp • United States
AI/ML
Red Teaming
Cybersecurity
Burp Suite
Cobalt Strike
Crowdstrike
Metasploit
MITRE ATT&CK
Nessus
Nmap
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.